Regulatory Updates

Gain insights on the latest regulatory updates related to digital, data and tech and what action they require of you by reading the latest updates (including alerts).

Only some are linked below. To read all previous insights and be alerted to future insights, join the relevant Michalsons programme. You can view the public and the “Members only” ones if you are a member and logged in.

HIPAA health breach notification update

The Federal Trade Commission (FTC) recently updated the HIPAA Health Breach Notification Rule (HBNR) to better safeguard consumer health information in today's digital age. This update is particularly relevant for organisations that handle health data, including those that may [...]

Saudi personal data protection law update 2024

The Saudi Data and Artificial Intelligence Authority (SDAIA) has released proposed updates to the Personal Data Protection Law’s Transfer Regulations for public review until 18 April 2024. This post provides a snapshot of the proposed changes, helping you understand how [...]

By |2024-08-26T21:26:20+02:00April 14th, 2024|Categories: POPI and Data Protection|Tags: , |

South Africa’s National AI Plan

South Africa stands on the cusp of a digital renaissance by unveiling its ambitious draft national AI plan at the National AI Government Summit. Spearheaded by the Department of Communications and Digital Technologies (DCDT), this plan outlines a roadmap for [...]

By |2024-08-20T16:52:04+02:00April 8th, 2024|Categories: AI Governance|Tags: , , , |

Australian data protection and cybersecurity

In the digital era, cybersecurity remains a critical concern for organisations worldwide, with the Australian data protection and cybersecurity approach being an interesting way of addressing these challenges. The country's approach to cyber threats, grounded in proactive risk management and robust [...]

By |2024-05-22T08:48:45+02:00April 4th, 2024|Categories: POPI and Data Protection|Tags: , , , |

Kuwait data protection regulation 2024 update

Let’s talk about the Kuwait data protection regulation 2024. Kuwait’s Communications and Information Technology Regulatory Authority (CITRA) recently introduced Resolution No. 26 of 2024. This new regulation updates the country’s data privacy framework for telecommunications and IT service providers in [...]

By |2024-08-26T21:26:36+02:00March 27th, 2024|Categories: POPI and Data Protection|Tags: , |

How does the EU AI Act impact my organisation?

Understanding the EU AI Act's impact and ensuring your business follows its rules is like learning origami. You must do each step carefully, turning something simple into something complex and beautiful. As we move past the first steps of these [...]

By |2024-03-17T19:27:35+02:00March 15th, 2024|Categories: AI Governance|Tags: , , , |

Biden executive order on American sensitive personal data

There is a new Biden executive order on American sensitive personal data that protects American citizens from exploitation by countries of concern. It relates to sensitive personal data or information. It authorises the Attorney General to prevent the large-scale transfer [...]

Oman Data Protection Regulations 2024

In a significant move towards enhancing data protection compliance, Oman has introduced new regulations that promise to make it easier for businesses operating in Oman to navigate and align with the region’s legal framework. This post provides an analysis of [...]

By |2024-08-26T21:28:32+02:00February 19th, 2024|Categories: POPI and Data Protection|Tags: , |

EU AI Act compliance: Exploring the new frontier

The European Union's Artificial Intelligence Act (EU AI Act) marks a significant stride into previously uncharted territory, navigating the intricate landscape of AI regulation. This landmark piece of legislation seeks to harmonise the pace of AI innovations with ethical standards, [...]

By |2024-02-28T21:46:43+02:00February 5th, 2024|Categories: AI Governance|Tags: , |

EU-US Data Privacy Framework

Navigating the EU-US Data Privacy Framework (DPF) is like mastering a new language in the world of international data transfers. This critical framework, emerging as the successor to the Safe Harbor and Privacy Shield frameworks, is pivotal in facilitating trans-Atlantic [...]

By |2024-03-01T14:46:06+02:00January 25th, 2024|Categories: POPI and Data Protection|Tags: , , , |

EU AI Act post-agreement: Navigating the next steps

As the curtains draw on the intense negotiations over the EU AI Act, a new 'post-agreement' dawn breaks in artificial intelligence regulation. The Act, far from being a mere legislative text, represents a strategic move in the complex world of [...]

By |2024-02-28T21:56:54+02:00January 9th, 2024|Categories: AI Governance|Tags: , |

ISO/IEC 42001:2023: AI management system

ISO/IEC 42001:2023 is a comprehensive standard focused on managing AI systems within your organisation. This standard is crucial as it provides a structured approach to managing the unique challenges and risks associated with AI technologies. This post helps you: Understand [...]

By |2024-08-26T21:40:33+02:00December 18th, 2023|Categories: AI Governance|Tags: , , |